Summary | ZeroBOX

tt1.exe

Malicious Library Antivirus UPX Anti_VM PE64 PE File OS Processor Check
Category Machine Started Completed
FILE s1_win7_x6403_us Aug. 11, 2024, 2:40 p.m. Aug. 11, 2024, 3:32 p.m.
Size 1.9MB
Type PE32+ executable (GUI) x86-64, for MS Windows
MD5 7dff94df36e6e229ee7d60702dccf9a7
SHA256 16ab80de994e7725b290c75ba04cd1c573f4ff27dceeddac383feef68e8619d6
CRC32 4C096D38
ssdeep 49152:41TPH4hrPGi6B5LLxZKVnF1/eZ5XGgGGsQnDXvY4Rxkck5:41T/y71gGYxkL5
Yara
  • Malicious_Library_Zero - Malicious_Library
  • PE_Header_Zero - PE File Signature
  • IsPE64 - (no description)
  • Antivirus - Contains references to security software
  • anti_vm_detect - Possibly employs anti-virtualization techniques
  • UPX_Zero - UPX packed file
  • OS_Processor_Check_Zero - OS Processor Check

Name Response Post-Analysis Lookup
No hosts contacted.
IP Address Status Action
No hosts contacted.

Suricata Alerts

No Suricata Alerts

Suricata TLS

No Suricata TLS

Bkav W64.AIDetectMalware
Lionic Trojan.Win32.GameHack.4!c
Elastic malicious (high confidence)
Cynet Malicious (score: 99)
Skyhigh BehavesLike.Win64.Downloader.th
ALYac Gen:Variant.Zusy.555247
Cylance Unsafe
VIPRE Gen:Variant.Zusy.555247
Sangfor PUP.Win64.Gamehack.V2xb
BitDefender Gen:Variant.Zusy.555247
Cybereason malicious.f36e6e
Symantec ML.Attribute.HighConfidence
ESET-NOD32 a variant of Win64/GameHack.JJ potentially unsafe
APEX Malicious
McAfee Artemis!7DFF94DF36E6
Avast Win64:TrojanX-gen [Trj]
MicroWorld-eScan Gen:Variant.Zusy.555247
Emsisoft Gen:Variant.Zusy.555247 (B)
F-Secure Heuristic.HEUR/AGEN.1371818
McAfeeD ti!16AB80DE994E
FireEye Gen:Variant.Zusy.555247
Ikarus Trojan.Win32.Generic
Google Detected
Avira HEUR/AGEN.1371818
MAX malware (ai score=88)
Antiy-AVL RiskWare/Win64.Gamehack.jj
Gridinsoft Trojan.Win64.Downloader.sa
Arcabit Trojan.Zusy.D878EF
GData Gen:Variant.Zusy.555247
Varist W64/ABApplication.UHXT-8382
AhnLab-V3 Malware/Win.Generic.R639555
DeepInstinct MALICIOUS
Malwarebytes Generic.Malware/Suspicious
Panda Trj/Chgt.AD
TrendMicro-HouseCall TROJ_GEN.R002H09H924
Fortinet Adware/GameHack
AVG Win64:TrojanX-gen [Trj]
Paloalto generic.ml
CrowdStrike win/malicious_confidence_60% (W)